RHSA-2019:0981-01 -- Redhat Cython, PyYAML, babel, numpy, pytest, python-PyMySQL, python-attrs, python-backports, python-backports-ssl_match_hostname, python-chardet, python-coverage, python-dns, python-docs, python-docutils, python-funcsigs, python-idna, python-ipaddress, python-jinja2, python-lxml, python-markupsafe, python-mock, python-nose, python-pluggy, python-psycopg2, python-py, python-pygments, python-pymongo, python-pysocks, python-pytest-mock, python-requests, python-setuptools_scm, python-six, python-sqlalchemy, python-urllib3, python-virtualenv, python-wheel, python2, python2-pip, python2-rpm-macros, python2-setuptools, pytz, scipyID: oval:org.secpod.oval:def:66675 | Date: (C)2020-11-09 (M)2024-04-17 | Class: PATCH | Family: unix |
Python is an interpreted, interactive, object-oriented programming language that supports modules, classes, exceptions, high-level dynamic data types, and dynamic typing. SQLAlchemy is an Object Relational Mapper that provides a flexible, high-level interface to SQL databases. Security Fix: * python: Information Disclosure due to urlsplit improper NFKC normalization * python-sqlalchemy: SQL Injection when the order_by parameter can be controlled * python-sqlalchemy: SQL Injection when the group_by parameter can be controlled For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section. Platform: | Red Hat Enterprise Linux 8 |
Product: | Cython | PyYAML | babel | numpy | pytest | python-PyMySQL | python-attrs | python-backports | python-backports-ssl_match_hostname | python-chardet | python-coverage | python-dns | python-docs | python-docutils | python-funcsigs | python-idna | python-ipaddress | python-jinja2 | python-lxml | python-markupsafe | python-mock | python-nose | python-pluggy | python-psycopg2 | python-py | python-pygments | python-pymongo | python-pysocks | python-pytest-mock | python-requests | python-setuptools_scm | python-six | python-sqlalchemy | python-urllib3 | python-virtualenv | python-wheel | python2 | python2-pip | python2-rpm-macros | python2-setuptools | pytz | scipy |
|